News & Analysis as of

Data Protection Regulatory Oversight Regulatory Requirements

HaystackID

From Consent or Pay to AI Oversight: EDPB Expands Its Regulatory Reach in 2024

HaystackID on

What happens when data protection collides with the relentless pace of digital innovation? That’s the question the European Data Protection Board (EDPB) seemed to confront head-on in 2024, a year marked by unprecedented...more

Hogan Lovells

Draft Act on Artificial Intelligence in Spain - Opened public hearing until March 26

Hogan Lovells on

The Spanish Government has published the Preliminary Draft Act for the proper use and governance of Artificial Intelligence (the "Draft Act"), which aims to complement and develop the framework set out by the AI Regulation....more

Bradley Arant Boult Cummings LLP

Top 10 takeaways from the new HIPAA security rule NPRM

On Jan. 6, 2025, the U.S. Department of Health and Human Services (HHS) proposed new regulations to enhance cybersecurity protections for electronic protected health information (ePHI) under the Health Insurance Portability...more

Katten Muchin Rosenman LLP

Navigating DORA Compliance: Recent Developments

The EU Digital Operational Resilience Act (DORA) took effect on 17 January 2025 after a two-year implementation period. DORA sets out new requirements for financial entities (FEs) and their information technology and...more

A&O Shearman

ESAs roadmap for designation of critical ICT third-party service providers under DORA

A&O Shearman on

The European Supervisory Authorities (ESAs) have published a roadmap for the designation of critical ICT third-party service providers (CTPPs) under the EU Digital Operational Resilience Act (DORA). The roadmap of key dates...more

Seyfarth Shaw LLP

Judge Denies Industry Challenge To Massachusetts Data Access Law - Seyfarth's Future of Automotive Series

Seyfarth Shaw LLP on

More than four years after an industry trade association first filed its challenge to a November 2020 ballot initiative in Massachusetts, a federal judge issued an order in Alliance for Automotive Innovation v. Campbell...more

Shumaker, Loop & Kendrick, LLP

Client Alert: Navigating FINRA’s 2025 Third-Party Risk Updates: Compliance Strategies for Financial Institutions

Every year, the Financial Industry Regulatory Authority (FINRA) issues an Annual Regulatory Report in an effort to provide FINRA Member Firms with insight into findings from FINRA’s regulatory operations programs. The Annual...more

A&O Shearman

End of the Road for Representative Actions in English Data Claims

A&O Shearman on

How should multiple claimants seek compensation for alleged data misuse? It had originally been thought that the answer might be a representative action; an “opt-out” procedure enabling a single claimant to bring proceedings...more

A&O Shearman

Zooming in on AI – #10: EU AI Act – What are the obligations for “high-risk AI systems”?

A&O Shearman on

Companies deploying high-risk artificial intelligence (AI) systems must prepare to navigate a complex landscape of new obligations by August 2, 2026. In this post we explain the key obligations for providers and deployers of...more

White & Case LLP

AI Watch: Global regulatory tracker - Turkey

White & Case LLP on

Turkey has published multiple guidelines on the use of AI in various sectors; Turkish government expected to enact AI-specific regulation in the near future. Laws/Regulations directly regulating AI (the “AI Regulations”) ...more

White & Case LLP

AI Watch: Global regulatory tracker - Saudi Arabia

White & Case LLP on

Saudi Arabia is yet to enact AI Regulations, relying on guidelines to establish practice standards and general principles. Laws/Regulations directly regulating AI (the “AI Regulations”) There are currently no AI...more

White & Case LLP

AI Watch: Global regulatory tracker - Nigeria

White & Case LLP on

Nigeria's draft National AI Policy underway and will pave the way for a comprehensive national AI strategy. Laws/Regulations directly regulating AI (the “AI Regulations”) There is currently no specific law or...more

White & Case LLP

AI Watch: Global regulatory tracker - United States

White & Case LLP on

The US relies on existing federal laws and guidelines to regulate AI but aims to introduce AI legislation and a federal regulation authority. Laws/Regulations directly regulating AI (the “AI Regulations”) Currently,...more

Health Care Compliance Association (HCCA)

‘I Will Not Rest’; ‘I Am All In’: Remarkable Breach Hearing Sees Pledges by UHG CEO, Sen. Wyden

United Healthcare Group (UHG) CEO Andrew Witty was in a board meeting on Feb. 21 when officials interrupted with the news that Change Healthcare—a clearinghouse UHG subsidiary Optum had purchased for $1.3 billion in October...more

Troutman Pepper Locke

That’s a Wrap…or Not? Regulatory Data Incident Investigation Resolutions and the Path Forward

Troutman Pepper Locke on

As we discussed in part three of this series, “Navigating the Complexities of Regulatory Data Incident Investigations,” when an organization is the subject of regulatory data incident investigations, it must navigate a...more

Ballard Spahr LLP

CA Court of Appeals Decision Means CPPA May Start Enforcing CPRA Regulations

Ballard Spahr LLP on

On February 9, 2024, California’s Third District Court of Appeals reinstated the California Privacy Protection Agency’s (“CPPA”) ability to enforce the California Privacy Rights Act of 2020 (“CPRA”) regulations. The CPRA...more

Health Care Compliance Association (HCCA)

As AI-Assisted Research Advances, Experts Share Worries, Oversight Strategies; Collaboration Urged

At Cornell University, institutional review board (IRB) members meet with the chief information security officer and a liaison to the general counsel’s office. Their regular attendance has been “really critical,” said IRB...more

Akerman LLP - Health Law Rx

OCR Will Focus on You if You Don’t Focus on Cybersecurity

With a couple of “firsts,” the U.S. Department of Health and Human Services (HHS) Office for Civil Rights (OCR) is signaling that it is cracking down on healthcare organizations that fail to identify and address cybersecurity...more

Perkins Coie

Federal Legislation Seeks To Change Online Child Safety Reporting Obligations and Impose Content Safety Obligations

Perkins Coie on

A significant number of federal legislative proposals that focus on online child safety have been introduced. If enacted, they would modify online providers’ obligations to remove and report child sexual exploitation (CSE)...more

McDermott Will & Emery

Insurance Regulators Continue Big Data Scrutiny

We previously reported on regulators’ increased attention to the use of big data systems, including external consumer data and information sources, algorithms and predictive models. Recent announcements in Colorado, Louisiana...more

Robinson+Cole Data Privacy + Security Insider

California Businesses Start 2023 with CPRA Requirements without Official Regulations

Readers of this blog know that we’ve been closely following the California Privacy Rights Act (CPRA) rulemaking process. California passed the law in 2020 to update the California Consumer Privacy Act of 2018 with additional...more

BCLP

Part 3 of 5: the PIPL and the Personal Information Security Specification

BCLP on

In Part 2 of this series, we discussed how the Personal Information Protection Law (“PIPL”), the centerpiece of China’s personal information (“PI”) protection law, needs to be read in conjunction with other relevant laws,...more

Williams Mullen

[Webinar] CLE Institute - Advertising and Customer Engagement in the Digital Age - November 12th, 3:00 pm - 4:30 pm ET

Williams Mullen on

Social media and influencers. Online feedback and electronic oversight. Data protection and privacy. Managing the legal issues surrounding doing business online is a significant concern for many in-house counsel. Join us for...more

Hogan Lovells

New York State Expected to Increase Enforcement of Cybersecurity Practices

Hogan Lovells on

Companies should take note of two imminent developments in New York in the area of cybersecurity regulation: enforcement of the New York Department of Financial Services (NYDFS) Cybersecurity Regulation (Regulation) and the...more

Hogan Lovells

Should I Be Worried About the GDPR? – EDPB’S Guidelines on the GDPR’S Territorial Scope

Hogan Lovells on

Does the GDPR really apply to my company? From a data protection standpoint, this is the first thing that comes to mind within non-EU companies. In many cases, the GDPR seems like an issue of the Old Continent, so some assume...more

38 Results
 / 
View per page
Page: of 2

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide